Cybozu Office Attendance Information Unspecified Security Bypass Vulnerability
BID:50015
Info
Cybozu Office Attendance Information Unspecified Security Bypass Vulnerability
| Bugtraq ID: | 50015 |
| Class: | Access Validation Error |
| CVE: |
CVE-2011-2677 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 07 2011 12:00AM |
| Updated: | Oct 07 2011 12:00AM |
| Credit: | Masako Ohno |
| Vulnerable: |
Cybozu Office 8 Cybozu Office 7 Cybozu Office 6.6 Build 1.3 Cybozu Office 6.6 (1.4) Cybozu Office 6.5 Cybozu Office 6 |
| Not Vulnerable: |
Cybozu Office 9 |
Discussion
Cybozu Office Attendance Information Unspecified Security Bypass Vulnerability
Cybozu Office is prone to an unspecified security-bypass vulnerability.
Attackers can exploit this issue to bypass security restrictions and gain access to view other user's attendance information. Successful exploits will compromise the affected application.
Cybozu Office 8.0.0 is vulnerable; prior versions may also be affected.
Cybozu Office is prone to an unspecified security-bypass vulnerability.
Attackers can exploit this issue to bypass security restrictions and gain access to view other user's attendance information. Successful exploits will compromise the affected application.
Cybozu Office 8.0.0 is vulnerable; prior versions may also be affected.
Exploit / POC
Cybozu Office Attendance Information Unspecified Security Bypass Vulnerability
Currently we are not aware of any exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Cybozu Office Attendance Information Unspecified Security Bypass Vulnerability
Solution:
Updates are available. Please see the references for more details.
Solution:
Updates are available. Please see the references for more details.
References
Cybozu Office Attendance Information Unspecified Security Bypass Vulnerability
References:
References: